Associate, Threat Intelligence

Posted 2 Months Ago
Be an Early Applicant
Bangalore, Bengaluru Urban, Karnataka, IND
Hybrid
Junior
Big Data • Security • Software • Analytics • Cybersecurity
The Role
Perform OSINT and dark‑web investigations, support incident response with threat research and indicator enrichment, assist vulnerability and digital footprint assessments, produce actionable intelligence reports and client briefings, and manage multiple consulting engagements with global CTI and incident response teams.
Summary Generated by Built In

 Kroll Cyber Threat Intelligence (CTI) is seeking a motivated and analytically minded Cyber Threat Intelligence Analyst based in India. The role focuses on identifying, investigating, and assessing cyber threats across open web, deep web, and dark web sources, then translating fragmented information into clear, defensible, and actionable intelligence for global business clients. The successful candidate will support international engagements, collaborate across regions, and apply sound intelligence tradecraft to complex investigative questions.

Day-to-day responsibilities:

  • Conduct targeted and exploratory investigations across open web, deep web, dark web, and restricted-access sources to identify relevant threat activity, exposed data, fraud indicators, brand abuse, and emerging risk. 
  • Monitor underground forums, marketplaces, leak sites, illicit communities, messaging channels, paste sites, credential repositories, and other relevant sources for client-specific threats and material changes in the threat landscape. 
  • Develop and refine collection plans, search strategies, source lists, personas, keywords, and monitoring logic aligned to intelligence requirements and investigative objectives. 
  • Assess source reliability, information credibility, relevance, and confidence; distinguish corroborated findings from unverified claims and clearly communicate analytical limitations. 
  • Analyze cybercrime ecosystems, threat actors, campaigns, ransomware and extortion activity, data-theft operations, fraud schemes, and associated tactics, techniques, and procedures. 
  • Correlate information from multiple sources to identify relationships, patterns, changes in behavior, and implications for clients; maintain structured notes and an auditable evidentiary trail. 
  • Produce concise intelligence reports, investigative updates, threat assessments, and executive briefings that communicate key judgments, supporting evidence, confidence, and recommended actions. 
  • Provide focused investigative support during cyber incidents through threat actor research, infrastructure and indicator enrichment, leak-site monitoring, and rapid assessment of external reporting. 
  • Conduct digital footprint and exposure monitoring to identify leaked credentials, exposed information, impersonation, brand misuse, third-party references, and other indicators of potential risk. 
  • Participate in client communications, including status updates, investigative briefings, and clarification of findings, under the guidance of engagement leads. 
  • Track assigned workstreams, document investigative steps, meet delivery timelines, and manage multiple concurrent tasks while maintaining quality, responsiveness, and professionalism. 
  • Collaborate with CTI peers, incident response professionals, engagement leads, and regional stakeholders to deliver coordinated and intelligence-led client outcomes. 

Essential Traits:

  • Strong intelligence analytical skills, including source evaluation, corroboration, hypothesis development, structured analysis, pattern recognition, and the articulation of confidence and analytical gaps. 
  • Ability to synthesize large volumes of structured and unstructured information into clear key judgments and client-relevant implications. 
  • Understanding of cybercrime ecosystems, threat actor behavior, ransomware and extortion, data theft, fraud, credential abuse, brand exploitation, and common threat actor TTPs. 
  • Ability to handle sensitive investigative information responsibly and maintain clear research notes, source records, and evidentiary documentation. 
  • Excellent written and verbal English communication skills, with the ability to tailor analysis for technical and non-technical audiences. 
  • Ability to work independently, exercise sound judgment, and collaborate effectively within a distributed global team. 
  • Experience in a consulting, managed intelligence, investigations, risk advisory, or client services environment. 
  • Experience researching threat actors, online aliases, infrastructure, malware, campaigns, victimology, and relationships across underground ecosystems. 
  • Experience conducting both recurring monitoring and time-sensitive investigations against defined intelligence requirements. 
  • Experience preparing client-ready written products, executive summaries, investigative briefings, or recurring monitoring reports. 

Prerequisites:

  • 1-3+ years of experience in cyber threat intelligence, dark web research, cyber investigations, OSINT, fraud intelligence, or a closely related analytical discipline. 
  • Demonstrated hands-on experience investigating and monitoring open web, deep web, and dark web sources, including forums, marketplaces, leak sites, illicit communities, credential sources, and breach data repositories. 
  • Familiarity with CTI, OSINT, dark web monitoring, link-analysis, breach-data, cryptocurrency tracing, and investigative case-management tools. 
  • Knowledge of intelligence frameworks and standards such as the intelligence cycle, Structured Analytic Techniques, MITRE ATT&CK, STIX/TAXII, and intelligence confidence language. 
  • Relevant certifications or training such as GCTI, SANS FOR578, GIAC Open Source Intelligence, or comparable CTI, OSINT, investigations, or analytical tradecraft programs are a plus. 
  • Willingness to support global clients, which may occasionally require flexible working hours that overlap with US or EMEA time zones. 
  • Strong sense of ownership, discretion, professionalism, and commitment to high-quality client service. 
  • Comfort operating in a consulting model with multiple concurrent workstreams, defined timelines, and evolving investigative priorities. 
  • Continuous learning mindset and willingness to develop expertise across new sources, tools, threat actors, and investigative methods. 
  • Brings disciplined curiosity, strong analytical judgment, and the ability to turn difficult-to-access information into clear intelligence that helps clients make informed decisions.

#LI-Hybrid 
#LI-SP1

Skills Required

  • 1-3+ years of experience in cyber threat intelligence, security research, SOC, or cyber investigations
  • Experience working in consulting, intelligence, MDR, or managed security services environment
  • Familiarity with OSINT, CTI, and investigative tools (dark web forums, marketplaces, breach data sources)
  • Prior exposure to incident response support, security operations, or threat detection activities
  • Working knowledge of vulnerability assessments, exposure management, and digital footprint monitoring
  • Understanding of cybercrime ecosystems, threat actor TTPs, ransomware, fraud, or data‑theft operations
  • Excellent written and verbal English communication skills
  • Willingness to support global clients with occasional flexible hours overlapping US or EMEA time zones
  • Relevant certifications (e.g., CEH, Security+, GCIA, GCTI, OSCP)

Kroll Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Kroll and has not been reviewed or approved by Kroll.

  • Healthcare Strength — Medical, dental, and vision coverage with HSA/FSA options are part of the U.S. package, alongside life and AD&D. Breadth across core health benefits is positioned as competitive for a large advisory firm.
  • Retirement Support — A 401(k) plan with company match is a core element of the package. Retirement support is consistently highlighted as competitive within total rewards.
  • Leave & Time Off Breadth — Paid holidays, sick leave, and PTO are included, with generous time off and parental/family leave for U.S. roles. Some roles also offer hybrid/WFH flexibility that complements time-off usability.

Kroll Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
5,001 Employees
Year Founded: 1932

What We Do

Kroll is the world’s premier provider of services and digital products related to valuation, governance, risk and transparency. We work with clients across diverse sectors in the areas of valuation, expert services, investigations, cyber security, corporate finance, restructuring, legal and business solutions, data analytics and regulatory compliance. Our firm has nearly 5,000 professionals in 30 countries and territories around the world. For more information, visit www.kroll.com.

Similar Jobs

Atlassian Logo Atlassian

Senior Product Designer

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
In-Office or Remote
Bengaluru, Bengaluru Urban, Karnataka, IND
11000 Employees

Atlassian Logo Atlassian

Machine Learning Engineer

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
In-Office or Remote
Bengaluru, Bengaluru Urban, Karnataka, IND
11000 Employees

Atlassian Logo Atlassian

Software Engineer

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
In-Office or Remote
Bengaluru, Bengaluru Urban, Karnataka, IND
11000 Employees

Atlassian Logo Atlassian

Technical Product Manager

Cloud • Information Technology • Productivity • Security • Software • App development • Automation
In-Office or Remote
Bengaluru, Bengaluru Urban, Karnataka, IND
11000 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account